In this podcast, they discuss Barracuda's failed attempt to drive out hackers, starting AWS security research, the value of limiting permissions, lessons learned from AWS certification, and an introduction to IAM policy validator and the security tool WAP ELIZER.
Zero-day hackers still pose a threat to customer networks despite efforts by Barracuda to eliminate them.
Limiting permissions is an effective security measure illustrated by real-life examples shared by AWS.
Deep dives
AWS Security as Job Zero
AWS emphasizes the importance of security and believes it is everyone's responsibility. Despite the misconception, zero-day hackers still pose a threat to customer networks.
Lessons and Tools in AWS Security
AWS shares real-life examples of the effectiveness of limiting permissions, highlights the value of IAM policy validation, and mentions a helpful tool for detecting website technologies called WAP ELIZER.
1.
AWS Security Discussion: Barracuda, AWS Research, and IAM Policies
Last week in security news: Barracuda thought it drove 0-day hackers out of customers’ networks, A terrific guide for getting started with AWS security research, “Zukey” or “Amazon Basics Yubikey”, and more!